Bug 279511 - net/keycloak: Update to 24.0.5 CVE-2024-4540
Summary: net/keycloak: Update to 24.0.5 CVE-2024-4540
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: --- Affects Some People
Assignee: Vladimir Druzenko
URL: https://www.keycloak.org/2024/06/keyc...
Keywords:
Depends on:
Blocks:
 
Reported: 2024-06-04 09:49 UTC by Matthias Wolf
Modified: 2024-06-04 12:11 UTC (History)
1 user (show)

See Also:
vvd: merge-quarterly+


Attachments
net/keycloak (854 bytes, patch)
2024-06-04 09:49 UTC, Matthias Wolf
freebsd: maintainer-approval+
Details | Diff

Note You need to log in before you can comment on or make changes to this bug.
Description Matthias Wolf 2024-06-04 09:49:40 UTC
Created attachment 251209 [details]
net/keycloak

Upgrade Keycloak to 24.0.5.

Tested on 13.3-RELEASE.

Security: CVE-2024-4540
Comment 1 commit-hook freebsd_committer freebsd_triage 2024-06-04 12:01:42 UTC
A commit in branch main references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=66393bc771ef59ea5d548edd02e6deb5a3ab3e27

commit 66393bc771ef59ea5d548edd02e6deb5a3ab3e27
Author:     Matthias Wolf <freebsd@rheinwolf.de>
AuthorDate: 2024-06-04 11:58:08 +0000
Commit:     Vladimir Druzenko <vvd@FreeBSD.org>
CommitDate: 2024-06-04 12:00:57 +0000

    net/keycloak: update to 24.0.5

    News:
    https://www.keycloak.org/2024/06/keycloak-2405-released.html

    PR:     279511

 net/keycloak/Makefile | 2 +-
 net/keycloak/distinfo | 6 +++---
 2 files changed, 4 insertions(+), 4 deletions(-)
Comment 2 commit-hook freebsd_committer freebsd_triage 2024-06-04 12:08:44 UTC
A commit in branch 2024Q2 references this bug:

URL: https://cgit.FreeBSD.org/ports/commit/?id=3e297308273c4472091d91fdce7f37bcbfd98c7b

commit 3e297308273c4472091d91fdce7f37bcbfd98c7b
Author:     Matthias Wolf <freebsd@rheinwolf.de>
AuthorDate: 2024-06-04 11:58:08 +0000
Commit:     Vladimir Druzenko <vvd@FreeBSD.org>
CommitDate: 2024-06-04 12:07:23 +0000

    net/keycloak: update to 24.0.5

    News:
    https://www.keycloak.org/2024/06/keycloak-2405-released.html

    PR:     279511
    (cherry picked from commit 66393bc771ef59ea5d548edd02e6deb5a3ab3e27)

 net/keycloak/Makefile | 2 +-
 net/keycloak/distinfo | 6 +++---
 2 files changed, 4 insertions(+), 4 deletions(-)
Comment 3 Vladimir Druzenko freebsd_committer freebsd_triage 2024-06-04 12:11:37 UTC
"Security: CVE-2024-4540" => merge-quarterly (2024Q2).
But I forgot add information about this to commit message.

Thanks!